← Back

CVE-2008-6085

nvd nist
Published: Feb 6, 2009Modified: Apr 23, 2026

JSON object

Loading...
7.6
Vector
AV:N/AC:H/Au:N/C:C/I:C/A:C
Exploitability: 4.9 / Impact: 10.0
Source: NVD

Description

Integer overflow in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, when configured to scan inside compressed archives, allows remote attackers to execute arbitrary code via a crafted RPM compressed archive file, which triggers a buffer overflow.

Affected (41)

17 products
Configuration A
41 vulnerable
Vulnerable SoftwareAffected Versions
F Secure
Version 2006
Version 2007
Version 2007
Version 2008
Version 2009
Version 7.02
Up to 7.00
F Secure
Up to 7.10
Version 6.62
Version 7.00
Up to 5.61
Up to 8.00
F Secure
Version 7.10
Version 7.11
F Secure
Up to 5.54
Version 5.30
Version 5.52
Version 5.53
F Secure
Up to 5.54
Version 5.30
Version 5.52
F Secure
Up to 7.12
Version 7.11
Version 2009
Up to 2.16
Up to 6.61
F Secure
Version 2006
Version 2007
Version 2007
Version 2008
Version 2009
Version 7.02
Up to 7.01
F Secure
Up to 5.0.4
Version 4.0.7
F Secure
Up to 3.10
Version 3.00
F Secure
Up to 8.00
Version 5.00
Version 6.00
Version 7.00

Related CWEs

References (12)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.